新闻中心

Vulnerable software that helped cause Equifax breach still being used by major U.S. corporations

Someone at these companies, please update your software!

Hundreds of major U.S. corporations are using the same flawed versionof server software that led to the 2017 Equifaxbreach, according to open source software automation firm, Sonatype.

In a report published by TechCrunch, Sonatype’s data shows that two-thirds of Fortune 100 companies downloaded unsecure versions of the software, Apache Struts, in the last six months of 2018. Close to 150 million peoplehad their personal information stolen by hackers who broke into the credit reporting agency’s systems. Some of the data stolen included names, social security numbers, birth dates, and addresses.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!
SEE ALSO:Everything you need to know about the massive Equifax data breach

Since the breach, there have been more than a dozen Struts patches released, with the most recent one being earlier this year. However, a majority of the biggest corporations in the country have downloaded the vulnerable versions. According to Sonatype, more than 18,000 businesses downloaded vulnerable versions of Struts.

On Tuesday, Sonatype announced that the company would be partnering with Equifax in order to help the credit reporting agency prevent future breaches. The company will monitor Equifax’s network-wide open source libraries.

In the fallout of the Equifax hack, a report came out showcasing just how preventablethe breach was. Judging by Sonatype’s data, it seems like we may see at least a few more similarly preventable breaches in the future.

UPDATE: Jan. 29, 2019, 11:43 a.m. EST An earlier version of this article misstated the number of companies. It is two-thirds of Fortune 100 corporations, not Fortune 500.


Featured Video For You
Fortnite security flaw allowed hackers to take over players' accounts

上一篇:England see off Ukraine, Ronaldo nets double 下一篇:米奇情侣可爱划痕贴侧门遮挡保险杠卡通米老鼠贴 汽车贴纸 装饰贴

Copyright © 2024 鹰潭市某某系统技术维修站 版权所有   网站地图